What problem does it solve?
Bug bounty programs require coordinating multiple security disciplines, collecting findings, and producing submission-ready reports. This Skill automates the orchestration of parallel audit agents and a canonical reporting workflow, reducing time to actionable results.
Core Features & Use Cases
- Parallel agent orchestration: Spawns eight specialized security agents in parallel to audit web/API surfaces, smart contracts, and related infrastructure.
- Gate-based evaluation & scoring: Applies the four-gate judging process and CVSS 3.1 scoring to validate findings and rank risk.
- Platform-ready reporting: Formats outputs for HackerOne, Bugcrowd, Intigriti, Immunefi, and generic formats; supports deduplication, chain reasoning, and lead handling.
- Local tooling integration: Integrates with local tooling and a Deepseek/Claude Code environment to execute code, collect evidence, and reproduce PoCs.
- Reference-driven guidance: Uses references to standardized attack vectors and agent behavior to produce repeatable assessments.
Quick Start
Install this skill and run an audit against your target using the built-in workflow.